中文

Website Security Scanner

Comprehensive security check · Vulnerability scan · Threat intel · SSL analysis

afsp.org
Scan Time: 2026-05-21 02:35:04
Re-scan
50
High Risk
2026-05-21 02:35:04

Security Issues Found

  • ⚠️[LOW] 服务器信息泄露
  • ⚠️[HIGH] 敏感路径暴露
  • ⚠️[MEDIUM] 缺少 HTTP 安全头

Recommendations

  • 💡添加 DMARC 记录增强邮件安全
  • 💡配置 Web 服务器添加这些安全头
  • 💡移除或修改 Server/X-Powered-By 响应头
  • 💡限制对这些路径的访问或添加认证

🌐Domain Info

Targetafsp.org
Registeredafsp.org
TLD.org

🛡️Threat Intelligence (7 platforms)

BlacklistNot Blacklisted
Malware0
Phishing0
Abuse Score0/100

🐛Vulnerabilities Found (3)

MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-Frame-Options, X-XSS-Protection, X-Content-Type-Options, Content-Security-Policy, Permissions-Policy
Fix: 配置 Web 服务器添加这些安全头
LOW服务器信息泄露
响应头泄露服务器信息: Server: cloudflare
Fix: 移除或修改 Server/X-Powered-By 响应头
HIGH敏感路径暴露
发现可访问的敏感路径: /.env, /.git/config
Fix: 限制对这些路径的访问或添加认证

🔌Open Ports (4)

80
http
443
https
8080
unknown
8443
unknown

🌐DNS Records

A: 172.66.40.206
A: 172.66.43.50
AAAA: 2606:4700:3108::ac42:2b32
AAAA: 2606:4700:3108::ac42:28ce
MX: 20 d311723a.ess.barracudanetworks.com.
MX: 30 d311723b.ess.barracudanetworks.com.
NS: alex.ns.cloudflare.com.
NS: rita.ns.cloudflare.com.
TXT: "0ed1fe018af385f863b52c49038851bacf0d2f379d"
TXT: "apple-domain-verification=PniXDyyQHpaPMfJv"
TXT: "canva-site-verification=mYQ18ZXY6KCwEhmKIUOdXg"
TXT: "duo_sso_verification=izB2Oeroe7kImXabGRJ0DRLXapW9lVui4NrvTaQ2oZ78SQQqzyh7lXzdPGGNL52c"
TXT: "facebook-domain-verification=ruwgkn9lbkgkn7pnhty25teog1i4h2"
TXT: "google-site-verification=l3R3zvO9fHdJZXrSRjt58jO8z1V0lgghttFqn6jZ068"
TXT: "google-site-verification=ylbRgrJej_6R5gc3LRd6b9hGJRMDBUUkcrvigJF6Nyo"
TXT: "klaviyo-site-verification=HEwQGA"
TXT: "klaviyo-site-verification=Hj4fPm"
TXT: "klaviyo-site-verification=JXzNvL"
TXT: "klaviyo-site-verification=KHNe23"
TXT: "klaviyo-site-verification=LhhhiR"
TXT: "klaviyo-site-verification=N4W2c3"
TXT: "klaviyo-site-verification=NcEaHs"
TXT: "rippling-domain-verification=4c74b91e2181721e"
TXT: "v=spf1 include:spf.ess.barracudanetworks.com include:spf.protection.outlook.com include:zoho.com ip4:144.121.92.18 include:docebosaas.com ~all"
TXT: "zoho-verification=zb51231469.zmverify.zoho.com"
SOA: alex.ns.cloudflare.com. dns.cloudflare.com. 2403569571 10000 2400 604800 1800

📋HTTP Headers

Strict-Transport-Security: max-age=31536000
Referrer-Policy: strict-origin-when-cross-origin
Server: cloudflare